Commit graph

49 commits

Author SHA1 Message Date
Allen Houchins
37955d80bd
Delete "Compliance exclusions" team (#32968)
- https://github.com/fleetdm/fleet/issues/32633
2025-09-14 20:50:21 -05:00
Allen Houchins
8c57db82d3
Revert "Change Slack to pkg install" (#32207)
Reverts fleetdm/fleet#32206
- The pkg install wipes out all previous preferences.
2025-08-22 09:56:41 -05:00
Allen Houchins
1abb5c043a
Change Slack to pkg install (#32206)
- Converted the Slack install from VPP to pkg as a workaround to this
https://github.com/fleetdm/fleet/issues/31972
2025-08-22 09:46:39 -05:00
Allen Houchins
46e6e4c13f
Adding EULA via GitOps (#32004)
- Adjusting path to troubleshoot adding the EULA via GitOps
2025-08-16 21:26:11 -05:00
Noah Talerman
18e70e4ec4
Dogfood: Add EULA (#31991)
Dogfood this improvement: https://github.com/fleetdm/fleet/issues/28143

EULA is from Google Drive:
https://drive.google.com/file/d/172KjvaQehjxx6F9KFIk-IVkDyYTCSWm8/view?usp=sharing

---------

Co-authored-by: Allen Houchins <allenhouchins@mac.com>
2025-08-15 18:16:03 -05:00
Allen Houchins
02b80eeeca
Adding configuration for Nudge testing (#31928)
In preparation for Nudge testing:
- created a label
- install policy
- install script
- pkg for assets
- configuration profile
2025-08-14 20:00:39 -05:00
Allen Houchins
a0845a601f
Setting up Entra conditional access (#30893)
Configuring Entra conditional access:
- Test group label created
- SSO extension mobileconfig
- Policy to auto-install Company Portal app
- Company Portal software title defined
2025-07-15 14:31:39 -05:00
Allen Houchins
005b90e832
Adding new label for g-mdm team (#30718)
- Added new label for the g-mdm team
2025-07-09 23:39:57 -05:00
Allen Houchins
bae7023a36
Update collect-macos-compatibility-data.yml (#30220)
- Updated scope of query to label `macOS compatibility extension installed`
2025-06-20 21:59:46 -05:00
Allen Houchins
3ffe6d8745
Expand scope of macos_compatibility extension (#30219)
- Expanded scope of deployment to more than just our test devices
- Created label for scoped query reporting
2025-06-20 21:48:41 -05:00
Allen Houchins
0f68a2d2c4
Added additional logic for Keynote theme installer (#30029)
- Added a new `Keynote installed` label so that the Keynote theme
installer will only show up for devices with Keynote installed
- Added a new `refetch_host.sh` to use to trigger an immediate refetch
2025-06-15 21:54:48 -05:00
Allen Houchins
be0234bfcc
Self-service overhaul (#29598)
- Added FMAs via GitOps
- Added new label for scoping apps to ARM-based (Apple Silicon) Macs
2025-05-30 08:51:00 -05:00
Allen Houchins
f29dde3a66
Updated support contact URL (#29298)
- Updated the support contact URL to point to #help-dogfood instead of
the customer support portal.

Co-authored-by: Sam Pfluger <108141731+Sampfluger88@users.noreply.github.com>
2025-05-22 08:57:26 -05:00
Lucas Manuel Rodriguez
0ebcf788ad
Update SSO settings for dogfood (#28435)
- `issuer_uri` and `enable_jit_role_sync` are deprecated (see
https://github.com/fleetdm/fleet/issues/10688)
- Setting `enable_sso_idp_login` to allow testing logins initiated from
Google.
2025-04-22 10:40:34 -05:00
Allen Houchins
3562daa28a
Testing cleanup of No team (#28418)
- added `custom_settings` and cleaned up invalid key (`queries`)
2025-04-21 14:36:21 -05:00
Allen Houchins
416733be5b
Update team files to clean up No Team (#28258) 2025-04-21 14:12:32 -05:00
Allen Houchins
71117b332b
Removed query no longer needed (#28410) 2025-04-21 14:33:45 -04:00
Allen Houchins
2d4a733883
Updated webhook settings (#28252)
Related to this: https://github.com/fleetdm/fleet/issues/27629
2025-04-15 13:05:30 -05:00
Allen Houchins
258862f448
Re-add santa label (#28094) 2025-04-10 13:31:17 -05:00
Allen Houchins
b47ef0898c
Delete santa-test-devices.yml (#28085) 2025-04-10 10:47:32 -05:00
Allen Houchins
3369b15b12
Adding labels via GitOps (#28083)
Adding labels via GitOps
2025-04-10 10:26:01 -05:00
Allen Houchins
9de88274b0
Add query to collect app hashes (#28081)
Added query to collect app hashes.
2025-04-10 09:34:47 -05:00
Allen Houchins
ac021a3211
Updated team names (#28078) 2025-04-10 09:21:03 -05:00
Allen Houchins
00480f8fb0
Renaming teams to support Android devices (#27991)
Related to fleetdm/confidential#9192
2025-04-08 17:45:14 -05:00
Allen Houchins
6e32e31896
Update default.yml (#27626)
Updated failing policy webhook to trigger on specific policies.
2025-03-28 09:45:28 -05:00
Allen Houchins
40d670e12f
Added query to detect APNs certificates (#26876)
Create a query and assigned it to all teams to identify which macOS
devices are no longer communicating with Fleet via MDM.
2025-03-05 14:36:00 -05:00
Allen Houchins
9ee2d5e695
Updating APNs certificate and related policy automations (#26696)
Created a new policy with the calendaring automation for when I update
the APNs certificate being used.

---------

Co-authored-by: Brock Walters <153771548+nonpunctual@users.noreply.github.com>
2025-03-04 13:42:42 -06:00
Allen Houchins
0a94f81431
Switched from metadata_url to metadata for end user authentication (#26042)
Switched from metadata_url to metadata for end user authentication.

---------

Co-authored-by: Noah Talerman <47070608+noahtalerman@users.noreply.github.com>
2025-02-20 10:02:24 -06:00
Ian Littman
6c512ec857
Re-add VPP apps and VPP-team associations to Dogfood (#26122) 2025-02-05 17:46:06 -06:00
Allen Houchins
b2beaa731d
Update default.yml (#26115) 2025-02-05 17:21:48 -06:00
Allen Houchins
3b9b21c5d8
New enrollment profile policy, removed disable notification mobileconfig (#26018)
Created a new policy to help with fleetdm/confidential#9525
Deleted a configuration profile that disable Software Update
notifications 😠
2025-02-04 08:37:05 -08:00
Allen Houchins
212979d9fc
Multiple updates to queries (#25891)
Co-authored-by: Harrison Ravazzolo <38767391+harrisonravazzolo@users.noreply.github.com>
2025-01-30 13:00:43 -06:00
Allen Houchins
9740ff7d23
Query and policy fixes (#25864)
Added query to all teams to collect operating system information for
dashboarding.
Copied Slack update policy to from Workstations (canary) to Workstations
team.
2025-01-29 13:04:46 -06:00
Allen Houchins
52d5632e37
Updates for webhooks (#25806)
To support these dogfooding changes: fleetdm/confidential#9198
2025-01-28 20:58:12 -06:00
Allen Houchins
e90574b808
Enable activities webhook via GitOps (#25690)
Dogfooding this feature: fleetdm/confidential#9337
2025-01-22 15:00:07 -06:00
Allen Houchins
db9258c9d0
Fix VPP error in new team and webhook errors (#24968)
Fix for this:
https://github.com/fleetdm/fleet/issues/24471#issuecomment-2557675654
Fix for this:
https://fleetdm.slack.com/archives/C071NNMSP2R/p1734726391490999
2024-12-20 15:54:29 -06:00
Noah Talerman
e8a9c6654c
Update default.yml (#24921)
- The new config is flat. We just updated the docs here:
https://github.com/fleetdm/fleet/pull/24891
2024-12-19 17:19:33 -06:00
Allen Houchins
9b6b21f3b7
Added settings for Windows MDM migration (#24865) 2024-12-19 10:31:31 -06:00
Luke Heath
d47bd8f626
Reorganize our it-and-security directory (#24278) 2024-12-09 13:42:47 -06:00
Luke Heath
77085666f9
Update ABM yaml to set defaults teams using new format (#23600) 2024-11-07 14:38:35 -06:00
Lucas Manuel Rodriguez
3e29f16f53
dogfood: Restore VPP token association to teams (#23114)
To fix
https://github.com/fleetdm/fleet/actions/runs/11468989615/job/31915263035#step:7:174

```
Error: applying app store apps for team: "🔳🏢 Company-owned iPads": POST /api/latest/fleet/software/app_store_apps/batch received status 422 Unprocessable Entity: could not retrieve vpp token: No available VPP Token
```

https://github.com/fleetdm/fleet/pull/22326 fixed so that GitOps removes
associations if they are not set (GitOps mode of operation where stuff
that's not set is removed), thus we now need to define it.
2024-10-23 11:15:56 -03:00
Lucas Manuel Rodriguez
8428f193fa
Move settings to no-team.yml (#22343)
Moving settings for hosts in "No team" from `default.yml` to
`teams/no-team.yml`.
2024-09-24 14:25:51 -03:00
Roberto Dip
078c0ac3b7
document and use MDM SSO settings via gitops (#21869)
for #21313
2024-09-09 17:03:20 -03:00
Victor Lyuboslavsky
b2cfc4082e
Added required "software" for GitOps YAML (#21271)
Fixes GitOps on main.
2024-08-13 16:03:29 +02:00
Rachael Shaw
1b5daad8b5
GitOps updates (#19147)
+ Update policy description for workstations maintenance windows (still
used the old one with grammatical errors).
+ Update org name to just "Fleet"
2024-05-20 14:59:59 -05:00
Joanne Stableford
419634d368
Configure google calendar integration in dogfood with API key (#18220)
Related: https://github.com/fleetdm/confidential/issues/6015

---------

Co-authored-by: Noah Talerman <47070608+noahtalerman@users.noreply.github.com>
2024-04-12 16:54:41 -04:00
Noah Talerman
452d6b8d0d
Set host expiry in dogfood back (#17763)
- Back to off
2024-03-21 12:30:00 -04:00
Rachael Shaw
fb68278b1b
Set host expiry window to 0 to see what happens (#17762)
^ what it says
2024-03-21 11:25:40 -05:00
Victor Lyuboslavsky
f36b7d4d6d
Use gitops with dogfood. (#17098)
#17043

Set up dogfood to use gitops. I copied the current dogfood
configs/policies/queries into the gitops flow.

Successful workflow run:
https://github.com/fleetdm/fleet/actions/runs/8023101797/job/21918883543?pr=17098

---------

Co-authored-by: Noah Talerman <noahtal@umich.edu>
2024-02-28 10:50:10 -06:00